<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PIX 520 restart automatically in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-520-restart-automatically/m-p/71833#M626424</link>
    <description>&lt;P&gt;My PIX 520 restart automatically several times a day. what's the possible reasion? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;previously ,we use aaa authentication include any any , it authentication tcp only , it work well , &lt;/P&gt;&lt;P&gt;now we use aaa authentication match and access-list to authentication the UDP, but pix 520 restart automatically several times a day. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX 's version is 5.2(3) , and following is logging and configuration: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;configuration: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: &lt;/P&gt;&lt;P&gt;PIX Version 5.2(3) &lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0 &lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100 &lt;/P&gt;&lt;P&gt;enable password I1KsNEYu.kF2dfHF encrypted &lt;/P&gt;&lt;P&gt;passwd I1KsNEYu.kF2dfHF encrypted &lt;/P&gt;&lt;P&gt;hostname pix520 &lt;/P&gt;&lt;P&gt;fixup protocol ftp 21 &lt;/P&gt;&lt;P&gt;fixup protocol http 80 &lt;/P&gt;&lt;P&gt;fixup protocol h323 1720 &lt;/P&gt;&lt;P&gt;fixup protocol rsh 514 &lt;/P&gt;&lt;P&gt;fixup protocol smtp 25 &lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521 &lt;/P&gt;&lt;P&gt;fixup protocol sip 5060 &lt;/P&gt;&lt;P&gt;names &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq www &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq ftp &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq telnet &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq smtp &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq domain &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq pop3 &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq nntp &lt;/P&gt;&lt;P&gt;access-list 10 permit udp 172.16.16.0 255.255.240.0 any eq domain &lt;/P&gt;&lt;P&gt;access-list 10 permit udp 172.16.16.0 255.255.240.0 any eq tftp &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 host 202.109.106.130 &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 host 202.109.99.129 &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 host 202.109.107.2 &lt;/P&gt;&lt;P&gt;access-list 10 permit udp 172.16.16.0 255.255.240.0 any eq 8000 &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq 443 &lt;/P&gt;&lt;P&gt;access-list 10 permit udp 172.16.16.0 255.255.240.0 any eq 443 &lt;/P&gt;&lt;P&gt;access-list 10 permit ip 172.16.16.0 255.255.240.0 host 61.129.74.7 &lt;/P&gt;&lt;P&gt;access-list 10 permit ip 172.16.16.0 255.255.240.0 host 61.129.74.10 &lt;/P&gt;&lt;P&gt;access-list 10 permit ip 172.16.16.0 255.255.240.0 host 61.129.74.14 &lt;/P&gt;&lt;P&gt;access-list 10 permit icmp any any echo &lt;/P&gt;&lt;P&gt;access-list 100 permit icmp any any echo-reply &lt;/P&gt;&lt;P&gt;access-list 100 permit icmp any any time-exceeded &lt;/P&gt;&lt;P&gt;access-list 100 permit icmp any any unreachable &lt;/P&gt;&lt;P&gt;access-list 60 permit ip any any &lt;/P&gt;&lt;P&gt;access-list 200 permit tcp any any &lt;/P&gt;&lt;P&gt;access-list 200 permit udp any any &lt;/P&gt;&lt;P&gt;access-list 300 deny udp any any eq domain &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.212 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.136 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.205 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.126 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.102 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.105 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.100 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.182 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.18.196 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.66 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.166 any &lt;/P&gt;&lt;P&gt;access-list 300 permit ip any any &lt;/P&gt;&lt;P&gt;pager lines 24 &lt;/P&gt;&lt;P&gt;logging on &lt;/P&gt;&lt;P&gt;logging timestamp &lt;/P&gt;&lt;P&gt;no logging standby &lt;/P&gt;&lt;P&gt;no logging console &lt;/P&gt;&lt;P&gt;no logging monitor &lt;/P&gt;&lt;P&gt;logging buffered debugging &lt;/P&gt;&lt;P&gt;no logging trap &lt;/P&gt;&lt;P&gt;no logging history &lt;/P&gt;&lt;P&gt;logging facility 20 &lt;/P&gt;&lt;P&gt;logging queue 512 &lt;/P&gt;&lt;P&gt;interface ethernet0 100full &lt;/P&gt;&lt;P&gt;interface ethernet1 100full &lt;/P&gt;&lt;P&gt;mtu outside 1500 &lt;/P&gt;&lt;P&gt;mtu inside 1500 &lt;/P&gt;&lt;P&gt;ip address outside 172.31.255.2 255.255.255.0 &lt;/P&gt;&lt;P&gt;ip address inside 172.16.16.100 255.255.240.0 &lt;/P&gt;&lt;P&gt;ip audit info action alarm &lt;/P&gt;&lt;P&gt;ip audit attack action alarm &lt;/P&gt;&lt;P&gt;no failover &lt;/P&gt;&lt;P&gt;failover timeout 0:00:00 &lt;/P&gt;&lt;P&gt;failover poll 15 &lt;/P&gt;&lt;P&gt;failover ip address outside 0.0.0.0 &lt;/P&gt;&lt;P&gt;failover ip address inside 0.0.0.0 &lt;/P&gt;&lt;P&gt;arp timeout 14400 &lt;/P&gt;&lt;P&gt;global (outside) 1 172.31.255.10-172.31.255.119 &lt;/P&gt;&lt;P&gt;global (outside) 2 172.31.255.121-172.31.255.239 &lt;/P&gt;&lt;P&gt;global (outside) 1 172.31.255.120 &lt;/P&gt;&lt;P&gt;global (outside) 2 172.31.255.240 &lt;/P&gt;&lt;P&gt;nat (inside) 2 172.16.18.0 255.255.255.0 0 0 &lt;/P&gt;&lt;P&gt;nat (inside) 1 172.16.31.0 255.255.255.0 0 0 &lt;/P&gt;&lt;P&gt;access-group 100 in interface outside &lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 172.31.255.1 1 &lt;/P&gt;&lt;P&gt;timeout xlate 4:00:00 &lt;/P&gt;&lt;P&gt;timeout conn 0:20:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00 sip 0:3 &lt;/P&gt;&lt;P&gt;0:00 sip_media 0:02:00 &lt;/P&gt;&lt;P&gt;timeout uauth 4:00:00 absolute uauth 0:30:00 inactivity &lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius &lt;/P&gt;&lt;P&gt;aaa-server tac+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;aaa-server tac+ (inside) host 172.16.16.91 france697 timeout 10 &lt;/P&gt;&lt;P&gt;aaa authentication match 300 inside tac+ &lt;/P&gt;&lt;P&gt;aaa accounting match 200 inside tac+ &lt;/P&gt;&lt;P&gt;filter activex 80 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 &lt;/P&gt;&lt;P&gt;no snmp-server location &lt;/P&gt;&lt;P&gt;no snmp-server contact &lt;/P&gt;&lt;P&gt;snmp-server community public &lt;/P&gt;&lt;P&gt;no snmp-server enable traps &lt;/P&gt;&lt;P&gt;virtual http 172.31.255.241 &lt;/P&gt;&lt;P&gt;virtual telnet 172.31.255.241 &lt;/P&gt;&lt;P&gt;no floodguard enable &lt;/P&gt;&lt;P&gt;no sysopt route dnat &lt;/P&gt;&lt;P&gt;auth-prompt prompt please input your name and password. &lt;/P&gt;&lt;P&gt;auth-prompt accept welcome! &lt;/P&gt;&lt;P&gt;auth-prompt reject invalid user name or password. try again. &lt;/P&gt;&lt;P&gt;isakmp identity hostname &lt;/P&gt;&lt;P&gt;telnet 172.16.31.198 255.255.255.255 inside &lt;/P&gt;&lt;P&gt;telnet 172.16.31.126 255.255.255.255 inside &lt;/P&gt;&lt;P&gt;telnet timeout 5 &lt;/P&gt;&lt;P&gt;ssh timeout 5 &lt;/P&gt;&lt;P&gt;terminal width 80 &lt;/P&gt;&lt;P&gt;Cryptochecksum:bd8bb00344452a5577bcb469d9cbfe13 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;logging: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pix520# show logging &lt;/P&gt;&lt;P&gt;Syslog logging: enabled &lt;/P&gt;&lt;P&gt;Timestamp logging: enabled &lt;/P&gt;&lt;P&gt;Standby logging: disabled &lt;/P&gt;&lt;P&gt;Console logging: disabled &lt;/P&gt;&lt;P&gt;Monitor logging: disabled &lt;/P&gt;&lt;P&gt;Buffer logging: level debugging, 28089 messages logged &lt;/P&gt;&lt;P&gt;Trap logging: disabled &lt;/P&gt;&lt;P&gt;History logging: disabled &lt;/P&gt;&lt;P&gt;1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.96/137 gaddr 172.31.255.121/1027 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.235/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.97/137 gaddr 172.31.255.121/1027 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.236/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.98/137 gaddr 172.31.255.121/1027 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.237/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.99/137 gaddr 172.31.255.121/1027 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.238/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.100/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;7 laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.239/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.101/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;7 laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.240/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.102/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;7 laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.241/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302002: Teardown TCP connection 2224 faddr 192.168.5.236/80 gaddr 172.31.255.130/2036 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.215/2036 duration 0:02:27 bytes 0 (lf) &lt;/P&gt;&lt;P&gt;37 to 64.13.160.241/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user '???' from 172.16.18.139/1393 to 202.109.106.132/8891 &lt;/P&gt;&lt;P&gt;109009: Authorization denied from 172.16.18.139/1393 to 202.109.106.132/8891 (not aut &lt;/P&gt;&lt;P&gt;henticated) on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;302001: Built outbound TCP connection 4344 for faddr 216.207.80.6/80 gaddr 172.31.255 &lt;/P&gt;&lt;P&gt;.145/1190 laddr 172.16.18.52/1190 (wj) &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user 'ss' from 172.16.18.206/1027 to 64.13.160.242/137 &lt;/P&gt;&lt;P&gt;109011: Authen Session Start: user 'ss', sid 49 &lt;/P&gt;&lt;P&gt;109007: Authorization permitted for user 'ss' from 172.16.18.206/1027 to 64.13.160.24 &lt;/P&gt;&lt;P&gt;2/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user 'ss' from 172.16.18.206/1025 to 68.72.70.151/137 &lt;/P&gt;&lt;P&gt;109011: Authen Session Start: user 'ss', sid 49 &lt;/P&gt;&lt;P&gt;109007: Authorization permitted for user 'ss' from 172.16.18.206/1025 to 68.72.70.151 &lt;/P&gt;&lt;P&gt;/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user 'ss' from 172.16.18.206/1027 to 64.13.160.243/137 &lt;/P&gt;&lt;P&gt;109011: Authen Session Start: user 'ss', sid 49 &lt;/P&gt;&lt;P&gt;109007: Authorization permitted for user 'ss' from 172.16.18.206/1027 to 64.13.160.24 &lt;/P&gt;&lt;P&gt;3/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user 'ss' from 172.16.18.206/1025 to 68.72.70.152/137 &lt;/P&gt;&lt;P&gt;109011: Authen Session Start: user 'ss', sid 49 &lt;/P&gt;&lt;P&gt;109007: Authorization permitted for user 'ss' from 172.16.18.206/1025 to 68.72.70.152 &lt;/P&gt;&lt;P&gt;/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 22 Feb 2020 07:13:58 GMT</pubDate>
    <dc:creator>biao-shen</dc:creator>
    <dc:date>2020-02-22T07:13:58Z</dc:date>
    <item>
      <title>PIX 520 restart automatically</title>
      <link>https://community.cisco.com/t5/network-security/pix-520-restart-automatically/m-p/71833#M626424</link>
      <description>&lt;P&gt;My PIX 520 restart automatically several times a day. what's the possible reasion? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;previously ,we use aaa authentication include any any , it authentication tcp only , it work well , &lt;/P&gt;&lt;P&gt;now we use aaa authentication match and access-list to authentication the UDP, but pix 520 restart automatically several times a day. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX 's version is 5.2(3) , and following is logging and configuration: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;configuration: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;: &lt;/P&gt;&lt;P&gt;PIX Version 5.2(3) &lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0 &lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100 &lt;/P&gt;&lt;P&gt;enable password I1KsNEYu.kF2dfHF encrypted &lt;/P&gt;&lt;P&gt;passwd I1KsNEYu.kF2dfHF encrypted &lt;/P&gt;&lt;P&gt;hostname pix520 &lt;/P&gt;&lt;P&gt;fixup protocol ftp 21 &lt;/P&gt;&lt;P&gt;fixup protocol http 80 &lt;/P&gt;&lt;P&gt;fixup protocol h323 1720 &lt;/P&gt;&lt;P&gt;fixup protocol rsh 514 &lt;/P&gt;&lt;P&gt;fixup protocol smtp 25 &lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521 &lt;/P&gt;&lt;P&gt;fixup protocol sip 5060 &lt;/P&gt;&lt;P&gt;names &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq www &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq ftp &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq telnet &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq smtp &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq domain &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq pop3 &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq nntp &lt;/P&gt;&lt;P&gt;access-list 10 permit udp 172.16.16.0 255.255.240.0 any eq domain &lt;/P&gt;&lt;P&gt;access-list 10 permit udp 172.16.16.0 255.255.240.0 any eq tftp &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 host 202.109.106.130 &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 host 202.109.99.129 &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 host 202.109.107.2 &lt;/P&gt;&lt;P&gt;access-list 10 permit udp 172.16.16.0 255.255.240.0 any eq 8000 &lt;/P&gt;&lt;P&gt;access-list 10 permit tcp 172.16.16.0 255.255.240.0 any eq 443 &lt;/P&gt;&lt;P&gt;access-list 10 permit udp 172.16.16.0 255.255.240.0 any eq 443 &lt;/P&gt;&lt;P&gt;access-list 10 permit ip 172.16.16.0 255.255.240.0 host 61.129.74.7 &lt;/P&gt;&lt;P&gt;access-list 10 permit ip 172.16.16.0 255.255.240.0 host 61.129.74.10 &lt;/P&gt;&lt;P&gt;access-list 10 permit ip 172.16.16.0 255.255.240.0 host 61.129.74.14 &lt;/P&gt;&lt;P&gt;access-list 10 permit icmp any any echo &lt;/P&gt;&lt;P&gt;access-list 100 permit icmp any any echo-reply &lt;/P&gt;&lt;P&gt;access-list 100 permit icmp any any time-exceeded &lt;/P&gt;&lt;P&gt;access-list 100 permit icmp any any unreachable &lt;/P&gt;&lt;P&gt;access-list 60 permit ip any any &lt;/P&gt;&lt;P&gt;access-list 200 permit tcp any any &lt;/P&gt;&lt;P&gt;access-list 200 permit udp any any &lt;/P&gt;&lt;P&gt;access-list 300 deny udp any any eq domain &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.212 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.136 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.205 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.126 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.102 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.105 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.100 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.182 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.18.196 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.66 any &lt;/P&gt;&lt;P&gt;access-list 300 deny ip host 172.16.31.166 any &lt;/P&gt;&lt;P&gt;access-list 300 permit ip any any &lt;/P&gt;&lt;P&gt;pager lines 24 &lt;/P&gt;&lt;P&gt;logging on &lt;/P&gt;&lt;P&gt;logging timestamp &lt;/P&gt;&lt;P&gt;no logging standby &lt;/P&gt;&lt;P&gt;no logging console &lt;/P&gt;&lt;P&gt;no logging monitor &lt;/P&gt;&lt;P&gt;logging buffered debugging &lt;/P&gt;&lt;P&gt;no logging trap &lt;/P&gt;&lt;P&gt;no logging history &lt;/P&gt;&lt;P&gt;logging facility 20 &lt;/P&gt;&lt;P&gt;logging queue 512 &lt;/P&gt;&lt;P&gt;interface ethernet0 100full &lt;/P&gt;&lt;P&gt;interface ethernet1 100full &lt;/P&gt;&lt;P&gt;mtu outside 1500 &lt;/P&gt;&lt;P&gt;mtu inside 1500 &lt;/P&gt;&lt;P&gt;ip address outside 172.31.255.2 255.255.255.0 &lt;/P&gt;&lt;P&gt;ip address inside 172.16.16.100 255.255.240.0 &lt;/P&gt;&lt;P&gt;ip audit info action alarm &lt;/P&gt;&lt;P&gt;ip audit attack action alarm &lt;/P&gt;&lt;P&gt;no failover &lt;/P&gt;&lt;P&gt;failover timeout 0:00:00 &lt;/P&gt;&lt;P&gt;failover poll 15 &lt;/P&gt;&lt;P&gt;failover ip address outside 0.0.0.0 &lt;/P&gt;&lt;P&gt;failover ip address inside 0.0.0.0 &lt;/P&gt;&lt;P&gt;arp timeout 14400 &lt;/P&gt;&lt;P&gt;global (outside) 1 172.31.255.10-172.31.255.119 &lt;/P&gt;&lt;P&gt;global (outside) 2 172.31.255.121-172.31.255.239 &lt;/P&gt;&lt;P&gt;global (outside) 1 172.31.255.120 &lt;/P&gt;&lt;P&gt;global (outside) 2 172.31.255.240 &lt;/P&gt;&lt;P&gt;nat (inside) 2 172.16.18.0 255.255.255.0 0 0 &lt;/P&gt;&lt;P&gt;nat (inside) 1 172.16.31.0 255.255.255.0 0 0 &lt;/P&gt;&lt;P&gt;access-group 100 in interface outside &lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 172.31.255.1 1 &lt;/P&gt;&lt;P&gt;timeout xlate 4:00:00 &lt;/P&gt;&lt;P&gt;timeout conn 0:20:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00 sip 0:3 &lt;/P&gt;&lt;P&gt;0:00 sip_media 0:02:00 &lt;/P&gt;&lt;P&gt;timeout uauth 4:00:00 absolute uauth 0:30:00 inactivity &lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius &lt;/P&gt;&lt;P&gt;aaa-server tac+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;aaa-server tac+ (inside) host 172.16.16.91 france697 timeout 10 &lt;/P&gt;&lt;P&gt;aaa authentication match 300 inside tac+ &lt;/P&gt;&lt;P&gt;aaa accounting match 200 inside tac+ &lt;/P&gt;&lt;P&gt;filter activex 80 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 &lt;/P&gt;&lt;P&gt;no snmp-server location &lt;/P&gt;&lt;P&gt;no snmp-server contact &lt;/P&gt;&lt;P&gt;snmp-server community public &lt;/P&gt;&lt;P&gt;no snmp-server enable traps &lt;/P&gt;&lt;P&gt;virtual http 172.31.255.241 &lt;/P&gt;&lt;P&gt;virtual telnet 172.31.255.241 &lt;/P&gt;&lt;P&gt;no floodguard enable &lt;/P&gt;&lt;P&gt;no sysopt route dnat &lt;/P&gt;&lt;P&gt;auth-prompt prompt please input your name and password. &lt;/P&gt;&lt;P&gt;auth-prompt accept welcome! &lt;/P&gt;&lt;P&gt;auth-prompt reject invalid user name or password. try again. &lt;/P&gt;&lt;P&gt;isakmp identity hostname &lt;/P&gt;&lt;P&gt;telnet 172.16.31.198 255.255.255.255 inside &lt;/P&gt;&lt;P&gt;telnet 172.16.31.126 255.255.255.255 inside &lt;/P&gt;&lt;P&gt;telnet timeout 5 &lt;/P&gt;&lt;P&gt;ssh timeout 5 &lt;/P&gt;&lt;P&gt;terminal width 80 &lt;/P&gt;&lt;P&gt;Cryptochecksum:bd8bb00344452a5577bcb469d9cbfe13 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;logging: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pix520# show logging &lt;/P&gt;&lt;P&gt;Syslog logging: enabled &lt;/P&gt;&lt;P&gt;Timestamp logging: enabled &lt;/P&gt;&lt;P&gt;Standby logging: disabled &lt;/P&gt;&lt;P&gt;Console logging: disabled &lt;/P&gt;&lt;P&gt;Monitor logging: disabled &lt;/P&gt;&lt;P&gt;Buffer logging: level debugging, 28089 messages logged &lt;/P&gt;&lt;P&gt;Trap logging: disabled &lt;/P&gt;&lt;P&gt;History logging: disabled &lt;/P&gt;&lt;P&gt;1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.96/137 gaddr 172.31.255.121/1027 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.235/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.97/137 gaddr 172.31.255.121/1027 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.236/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.98/137 gaddr 172.31.255.121/1027 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.237/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.99/137 gaddr 172.31.255.121/1027 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.238/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.100/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;7 laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.239/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.101/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;7 laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.240/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 172.88.205.102/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;7 laddr 172.16.18.206/1027 (ss) &lt;/P&gt;&lt;P&gt;302006: Teardown UDP connection for faddr 68.135.107.241/137 gaddr 172.31.255.121/102 &lt;/P&gt;&lt;P&gt;5 laddr 172.16.18.206/1025 (ss) &lt;/P&gt;&lt;P&gt;302002: Teardown TCP connection 2224 faddr 192.168.5.236/80 gaddr 172.31.255.130/2036 &lt;/P&gt;&lt;P&gt;laddr 172.16.18.215/2036 duration 0:02:27 bytes 0 (lf) &lt;/P&gt;&lt;P&gt;37 to 64.13.160.241/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user '???' from 172.16.18.139/1393 to 202.109.106.132/8891 &lt;/P&gt;&lt;P&gt;109009: Authorization denied from 172.16.18.139/1393 to 202.109.106.132/8891 (not aut &lt;/P&gt;&lt;P&gt;henticated) on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;302001: Built outbound TCP connection 4344 for faddr 216.207.80.6/80 gaddr 172.31.255 &lt;/P&gt;&lt;P&gt;.145/1190 laddr 172.16.18.52/1190 (wj) &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user 'ss' from 172.16.18.206/1027 to 64.13.160.242/137 &lt;/P&gt;&lt;P&gt;109011: Authen Session Start: user 'ss', sid 49 &lt;/P&gt;&lt;P&gt;109007: Authorization permitted for user 'ss' from 172.16.18.206/1027 to 64.13.160.24 &lt;/P&gt;&lt;P&gt;2/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user 'ss' from 172.16.18.206/1025 to 68.72.70.151/137 &lt;/P&gt;&lt;P&gt;109011: Authen Session Start: user 'ss', sid 49 &lt;/P&gt;&lt;P&gt;109007: Authorization permitted for user 'ss' from 172.16.18.206/1025 to 68.72.70.151 &lt;/P&gt;&lt;P&gt;/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user 'ss' from 172.16.18.206/1027 to 64.13.160.243/137 &lt;/P&gt;&lt;P&gt;109011: Authen Session Start: user 'ss', sid 49 &lt;/P&gt;&lt;P&gt;109007: Authorization permitted for user 'ss' from 172.16.18.206/1027 to 64.13.160.24 &lt;/P&gt;&lt;P&gt;3/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;109001: Auth start for user 'ss' from 172.16.18.206/1025 to 68.72.70.152/137 &lt;/P&gt;&lt;P&gt;109011: Authen Session Start: user 'ss', sid 49 &lt;/P&gt;&lt;P&gt;109007: Authorization permitted for user 'ss' from 172.16.18.206/1025 to 68.72.70.152 &lt;/P&gt;&lt;P&gt;/137 on interface inside &lt;/P&gt;&lt;P&gt;109013: User must authenticate before using this service &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 22 Feb 2020 07:13:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-520-restart-automatically/m-p/71833#M626424</guid>
      <dc:creator>biao-shen</dc:creator>
      <dc:date>2020-02-22T07:13:58Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 520 restart automatically</title>
      <link>https://community.cisco.com/t5/network-security/pix-520-restart-automatically/m-p/71834#M626426</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;have you checked for any known bugs in the bugtool kit??&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 14 Nov 2002 16:04:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-520-restart-automatically/m-p/71834#M626426</guid>
      <dc:creator>bbaley</dc:creator>
      <dc:date>2002-11-14T16:04:36Z</dc:date>
    </item>
  </channel>
</rss>

